As enterprises increasingly focus on digital business, security is seen as one of the biggest inhibitors to their digital transformations. Thales is making it easier to implement security in both traditional data center and cloud deployments by providing clientless access to its nShield hardware security modules (HSMs) through REST – compliant web services interfaces. With the rapid adoption of mobile and web-based services across the industry and the need for highly automated and efficient application deployment, the web-based REST architecture has emerged as the de facto standard for APIs connecting disparate systems.
With the new nShield HSM offering, users can implement their key management and crypto functionality independently of their applications and the underlying infrastructure, increasing flexibility and minimizing the time from project inception to application deployment. Furthermore, the new service model ensures fine-grained policies can be defined based on both role and user identity, ensuring processes or users can only perform the cryptographic, management or administrative operations assigned to their role and individual identity.
With the advent of modern applications, centralized data centers and cloud environments, organizations are deploying new applications that require a flexible and scalable security infrastructure. With the new nShield capabilities, organizations can now deploy a crypto processing service across multiple applications to securely generate, protect and store digital keys for their most sensitive applications. By making a RESTful API call such as "encrypt" or "sign," the applications can connect to an estate of HSMs without needing to understand the details of the nShield HSM environment. By utilizing the crypto services across multiple applications, organizations can scale their security infrastructure and increase utilization of their HSM estates, while supporting industry standard encryption algorithms.
Peter Galvin, vice president strategy, Thales e-Security says:
"The REST implementation of crypto APIs is our first step on the path to our vision of crypto-as-a-service based on a completely service-oriented architecture across our entire product portfolio, offering a full multi-tenant and role-based service interface to ease the deployment of applications in high-scale and cloud environments. As we evolve to provide these capabilities as a cloud service, cloud service providers will benefit from multiple roots of trust that scale across multi-tenancy environments and the simple, fully automated management of our data security platform."
About Thales e-Security
Thales e-Security is the leader in advanced data security solutions and services that deliver trust wherever information is created, shared or stored. We ensure that the data belonging to companies and government entities is both secure and trusted in any environment – on-premise, in the cloud, in data centers or big data environments – without sacrificing business agility. Security doesn't just reduce risk, it's an enabler of the digital initiatives that now permeate our daily lives – digital money, e-identities, healthcare, connected cars and with the internet of things (IoT) even household devices. Thales provides everything an organization needs to protect and manage its data, identities and intellectual property and meet regulatory compliance – through encryption, advanced key management, tokenization, privileged user control and high assurance solutions. Security professionals around the globe rely on Thales to confidently accelerate their organization's digital transformation. Thales e-Security is part of Thales Group.
Thales is a global technology leader for the Aerospace, Transport, Defence and Security markets. With 62,000 employees in 56 countries, Thales reported sales of €14 billion in 2015. With over 25,000 engineers and researchers, Thales has a unique capability to design and deploy equipment, systems and services to meet the most complex security requirements. Its exceptional international footprint allows it to work closely with its customers all over the world.
Positioned as a value-added systems integrator, equipment supplier and service provider, Thales is one of Europe's leading players in the security market. The Group's security teams work with government agencies, local authorities and enterprise customers to develop and deploy integrated, resilient solutions to protect citizens, sensitive data and critical infrastructure.
Thales offers world-class cryptographic capabilities and is a global leader in cybersecurity solutions for defence, government, critical infrastructure providers, telecom companies, industry and the financial services sector. With a value proposition addressing the entire data security chain, Thales offers a comprehensive range of services and solutions ranging from security consulting, data protection, digital trust management and design, development, integration, certification and security maintenance of cybersecured systems, to cyberthreat management, intrusion detection and security supervision through cybersecurity Operation Centres in France, the United Kingdom, The Netherlands and Hong Kong.
To view the original version on PR Newswire, visit:http://www.prnewswire.com/news-releases/thales-unveils-cloud-ready-hsm-to-deliver-crypto-services-for-modern-applications-300405910.html